URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 147.45.125.103
Firstseen:2025-09-19 09:04:04 UTC
Total malware sites :75
Online malware sites :0 (0%)
Offline Malware sites :75 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-19 09:04:33 147.45.125.103SBL654216AS400992 ZHOUYISAT-COMMUNICATIONS- RUyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-09-26 13:52:25http://147.45.125.103/lmaoWTF/loligang.arm4Offlineelf ua-wget abuse_ch
2025-09-25 18:11:20http://147.45.125.103/lmaoWTF/loligang.m68kOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:20http://147.45.125.103/lmaoWTF/loligang.arm7Offlinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:19http://147.45.125.103/lmaoWTF/loligang.arm5Offlinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:17http://147.45.125.103/lmaoWTF/loligang.armOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:17http://147.45.125.103/lmaoWTF/loligang.ppcOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:12http://147.45.125.103/lmaoWTF/loligang.mipsOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:11http://147.45.125.103/lmaoWTF/loligang.x86Offlinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:11http://147.45.125.103/lmaoWTF/loligang.mpslOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:11http://147.45.125.103/lmaoWTF/loligang.spcOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:11http://147.45.125.103/lmaoWTF/loligang.arm6Offlinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:10http://147.45.125.103/lmaoWTF/loligang.sh4Offlinemirai ext opendir DaveLikesMalwre
2025-09-25 18:11:09http://147.45.125.103/Pemex.shOfflinemirai ext opendir DaveLikesMalwre
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-25 00:53:05http://147.45.125.103/bns/gang123isgodloluaintg...Offlineelf ua-wget ClearlyNotB
2025-09-22 14:29:14http://147.45.125.103/d/akido.arm4Offlineelf ua-wget abuse_ch
2025-09-22 05:49:09http://147.45.125.103/d/akido.mpslOfflineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:08http://147.45.125.103/d/akido.mipsOfflineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:08http://147.45.125.103/d/akido.spcOfflineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:08http://147.45.125.103/d/akido.x86Offlineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:08http://147.45.125.103/d/akido.sh4Offlineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:07http://147.45.125.103/d/akido.arm7Offlineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:07http://147.45.125.103/d/akido.m68kOfflineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:07http://147.45.125.103/d/akido.ppcOfflineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:49:05http://147.45.125.103/sensi.shOfflinegeofenced mirai ext opendir sh ua-wget USA botnetkiller
2025-09-22 05:48:12http://147.45.125.103/d/akido.armOfflineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:48:11http://147.45.125.103/d/akido.arm5Offlineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 05:48:11http://147.45.125.103/d/akido.arm6Offlineelf geofenced mirai ext opendir ua-wget USA botnetkiller
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.arm7Offlineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.arcOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.mipsOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.ppcOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.arm5Offlineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.m68kOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.mpslOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.sh4Offlineelf ua-wget ClearlyNotB
2025-09-22 01:06:12http://147.45.125.103/LjEZs/uYtea.arm6Offlineelf ua-wget ClearlyNotB
2025-09-22 01:06:05http://147.45.125.103/LjEZs/uYtea.spcOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:05http://147.45.125.103/LjEZs/uYtea.x86_64Offlineelf ua-wget ClearlyNotB
2025-09-22 01:06:05http://147.45.125.103/LjEZs/uYtea.armOfflineelf ua-wget ClearlyNotB
2025-09-22 01:06:05http://147.45.125.103/LjEZs/uYtea.x86Offlineelf ua-wget ClearlyNotB
2025-09-20 04:58:19http://147.45.125.103/hiddenbin/Space.mpslOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:19http://147.45.125.103/hiddenbin/Space.ppcOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:19http://147.45.125.103/hiddenbin/Space.arm6Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:19http://147.45.125.103/hiddenbin/Space.x86Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:19http://147.45.125.103/hiddenbin/Space.m68kOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:19http://147.45.125.103/hiddenbin/Space.mipsOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.sh4Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.arcOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.x86_64Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.armOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.arm7Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.spcOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.arm5Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-20 04:58:18http://147.45.125.103/hiddenbin/Space.i686Offlineelf mirai ext ua-wget ClearlyNotB
2025-09-19 09:04:35http://147.45.125.103/hiddenbin/boatnet.mipsOfflineelf ua-wget ClearlyNotB
2025-09-19 09:04:35http://147.45.125.103/hiddenbin/boatnet.ppcOfflineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.arm6Offlineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.arcOfflineelf mirai ext ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.spcOfflineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.sh4Offlineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.armOfflineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.arm7Offlineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.m68kOfflineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.x86Offlineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.mpslOfflineelf ua-wget ClearlyNotB
2025-09-19 09:04:33http://147.45.125.103/hiddenbin/boatnet.arm5Offlineelf ua-wget ClearlyNotB

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-09-25 18:11:20acc20fd14b8e1b53ea191439d195c88308f50c16992803df187703e183f69b10elfMirai
2025-09-25 18:11:194e9ad12e83a54cae669ae3c2ec55e904fc09ebaf41cece2008cacbdb4b2dff0celfMirai
2025-09-25 18:11:19160f567aad23da0727db827c6da85588862cd4fa6de2927e4b358e643610c0a8elfMirai
2025-09-25 18:11:178c12b7daa6e646b110f39b0e00a64fdcb9ada06b39015cd3d8cc46501fc90d08elfMirai
2025-09-25 18:11:16c38afd83dd4c52d010259f3f3176a57f44b55997b8df90245ece14719b4b1f60elfMirai
2025-09-25 18:11:12505d15ac1ab8e9df8d348516f18a35a7f336084099434e873ca98dae15bb9c86elfMirai
2025-09-25 18:11:1165d7d11efaffc0a4473220f0f8ebf4f581e76ddb3fc1f8e974a4ee0a3c5b4b30elfMirai
2025-09-25 18:11:118b57771ce1285b842d1fa30a650981336463a9eb4f935940f44544596aeebc8eelfMirai
2025-09-25 18:11:11b0ff08932f2182676a85c54666e879321ca01bb40fa6b2af221bdbc11e44616aelfMirai
2025-09-25 18:11:10452540987eddc7f95a00827b19be0887e02c863c50968d908706c7596629ed29elfMirai
2025-09-25 18:11:10af41d2d312e2e3413ca2b28ec7c8cc363432a0c593d8384cbdad00d3c4c64ab2elfMirai
2025-09-25 18:11:09e0d94aa5fdc7bbf8e56973a59e42720fc8a8e29c64b14117e6f497a6ca9a4d72shMirai
2025-09-22 12:00:48574be5d877760c0abf099182981936772f0c22d976acbb134b2d0dcf6d7ae00ashMirai
2025-09-22 05:49:093d2ab7162d99fd8950b63c63a4f13ebfebdf374e51d76e750378b64d269b1bdaelfMirai
2025-09-22 05:49:0840752037dd394b67b11fd14f03ab90025cf0a3814e4d0b4830a6c9352f49ca8aelfMirai
2025-09-22 05:49:074bba91c0ac5d035f6271cf07470727026e6fb90a3017628c5989b25aaca14c66elfMirai
2025-09-22 05:49:0772f6b497c68c8cfa36232ae83580136efcf26dd43093c120a37543862e124cc3elfMirai
2025-09-22 05:49:072837e7d051ee8d5d240b5f105e38baa7e2046dd35c2ad49b841a44c0a090b46delfMirai
2025-09-22 05:49:073341169ea1940dbe12ffbab89350299799f5b191b671a67c57d026eb9905945celfMirai
2025-09-22 05:49:07f9605f2ba53a900bbd1761c45af1d13dd4be29fad12e612a0c1a22e39810387felfMirai
2025-09-22 05:49:07359a8213195b92d258040c1f79b5241424fcb424f58f69ea8fe96fc2b31e649aelfMirai
2025-09-22 05:48:123d9b8ca4af1be5175394c4a79eb0764351ddaa3b05ac64dbf190edd2fcb90856elfMirai
2025-09-22 05:48:1149591358d37d51b4ba21682890dcf60d95538bfcc5af9b178eef7111762906ddelfMirai
2025-09-22 05:48:1121c5bb09886a944d07c704c841a179a0d60cc2cbfd24cc146bdbb12af3a102a7elfMirai
2025-09-20 04:58:1912827c3f5df1db91959b18fc5a19d12891a30c2e06408754c15e9d7ded6c025eelfMirai
2025-09-20 04:58:19d183d0d42baed4f4b7d5433f5df24c1453ba273469167bb7d801865dbf557596elfMirai
2025-09-20 04:58:1983d312c72e2414a14ca0f3ddf6e40cf0c82be03131400ba3100bb3b8f57799b0elfMirai
2025-09-20 04:58:188cfa96f26c13a9962c8e7dd3c9bef011ea2a3fbb117685484cadcc96e820a033elfMirai
2025-09-20 04:58:180a3333a9d5b6088cd2bc89e3b078e8cbfe26297ebc07150162d5c96283ef24e6elfMirai
2025-09-20 04:58:18aa8487afeff81a6952b9270f7ab81cbf18f2cc75ff554496d596e66a70a51c7celfMirai
2025-09-20 04:58:185e011f93a04c6dc93df55ab173bee3ba1dc2d7b9d6665bd493cd44c572addf6belfMirai
2025-09-20 04:58:18efad3c94def984d06fbb24895bcc5c65b97d56266eb7830f1d377e044c51ac1celfMirai
2025-09-20 04:58:18abcc525e0ccb577fcda5c7b4d1f0b5eda692a5a8a2f8a7f8c94cef7e14641bceelfMirai
2025-09-20 04:58:1807fcb2491573bf833f1573281234f4dba2fc0afddf47e720f3d255ad6307fabaelfMirai
2025-09-20 04:58:181301fc95a00182d5960a769e58d23bb8bb3e885340dbd961e58a8e4161e2493aelfMirai
2025-09-20 04:58:180e58debf67a9090bbf1be2da95db2ccd4f92fe0e4686bbda954d62c57d1baccfelfMirai
2025-09-20 04:58:180ba34d3fa49cbddf145b2d88a055a5fe453edd5b8c2a87332de141d8b13cf782elfMirai
2025-09-20 04:58:1846af7fb3ce7c082374caa6819a3bf0990872097ea32310aca045b46a82439273elfMirai
2025-09-19 09:04:3359a4e5fee5209edb86b7bf852e8ba40ae4c258da5cda8e7c60fc18579788194delf  
2025-09-19 09:04:33a2fa4d0529eba4b28ba46d25f5c9848001413db821de492b96c8e169dec851e9elf  
2025-09-19 09:04:331addc625f95f4465413e87c2772a3da79a6aa0342ac439a17aaf710957f6753aelf  
2025-09-19 09:04:33b2150692107ceabaf2cd6b50e0522958f1167c34993573fd8447709881c1e2b4elf  
2025-09-19 09:04:33afca317318519fb2ae15ca6f5fd62c6739a8fbdb22cd45b8a7708f268ad38ffeelf  
2025-09-19 09:04:33e8edf5262bd79abd98a624a6f22f77cb0f65af54612b3377444995b5c580de6celf  
2025-09-19 09:04:32557a7a0053d24cc5f0fd6a1e753140993b46e7cfee329ac6ddefcd9be94145cbelfMirai
2025-09-19 09:04:32c3dfa7cda9d54cb99a865f08faaf77c4e3806cb5ca02374e548550cf1f6f6796elf  
2025-09-19 09:04:32c28c0adf305d4225c9d21fa9c254519a07e24d4411b42b99c85d882be65a0d1belf  
2025-09-19 09:04:32fca185b5efc7e5df44003d8612f179414eadb71c31386c707a7e6f1f8809790eelf  
2025-09-19 09:04:32d427cd5ac2c772a3c95a1615737508252dec671df6bcf526ab206b9770aa5a60elf  
2025-09-19 09:04:324ec4ff36077b82e16180834883f89012b670b8d25a0cbe4470f59d96708b0ee2elf